PoC Exploit Disclosed: Researcher Unveils Windows MS-EVEN RPC Vulnerability
ID: 67730e64-d9a4-552f-867a-55bb427329fd
STIX ID: report--67730e64-d9a4-552f-867a-55bb427329fd
Feed Name: securityonline.info
Threat Score
SafeBreach Labs disclosed CVE-2025-29969 (EventLogin), a TOCTOU vulnerability in the Windows MS-EVEN RPC service that enables low-privileged code to remotely write arbitrary files and potentially achieve remote code execution across workgroup and Active Directory environments; a public PoC was published and Microsoft issued a patch in May 2025.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
